CVE-2025-27916: Anydesk
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in AnyDesk for Windows before 9.0.6 and AnyDesk for Android before 8.0.0. When the connection between two clients is established via an IP address, it is possible to manipulate the data and spoof the AnyDesk ID.
Affected products
- Anydesk Anydesk: up to and including 9.0.4
Published 2025-11-06. Last modified 2026-06-17.